Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 10 THN:E9513E561E2...

Apache ActiveMQ Flaw Exploited to Deploy DripDropper Malware on Cloud Linux Systems_THN:E9513E561E2190C1697874EEEDB02282

![](data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAQAAAC1HAwCAAAAC0lEQVR42mP8Xw8AAoMBgDTD2qgAAAAASUVORK5CYII=) Threat actors are exploiti...

N/A N/A THN
CRITICAL 9.3 CVE-2025-55736

flaskBlog allows arbitrary privilege escalation_CVE-2025-55736

flaskBlog is a blog app built with Flask. In 2.8.0 and earlier, an arbitrary user can change his role to "admin", giving its relative privileges (e...

DogukanUrker FlaskBlog <= 2.8.0 CVE
CRITICAL 9.8 CVE-2025-55306

GenX_FX authentication bypass in JWT validation_CVE-2025-55306

GenX_FX is an advance IA trading platform that will focus on forex trading. A vulnerability was identified in the GenX FX backend where API keys an...

Mouy-leng GenX_FX <= 1.0.0 CVE
CRITICAL 9.7 CVE-2025-55733

DeepChat One-click Remote Code Execution through Custom URL Handling_CVE-2025-55733

DeepChat is a smart assistant that connects powerful AI to your personal world. DeepChat before 0.3.1 has a one-click remote code execution vulner...

ThinkInAIXYZ deepchat < 0.3.1 CVE
CRITICAL 9.8 CVE-2025-55294

Command Injection via `format` option in screenshot-desktop_CVE-2025-55294

screenshot-desktop allows capturing a screenshot of your local machine. This vulnerability is a command injection issue. When user-controlled input...

bencevans screenshot-desktop < 1.15.2 CVE
CRITICAL 9.8 CVE-2025-54336

CVE-2025-54336_CVE-2025-54336

In Plesk Obsidian 18.0.70, _isAdminPasswordValid uses an == comparison. Thus, if the correct password is "0e" followed by any digit string, then an...

n/a n/a n/a CVE
CRITICAL 10 CVE-2025-50567

CVE-2025-50567_CVE-2025-50567

Saurus CMS Community Edition 4.7.1 contains a vulnerability in the custom DB::prepare() function, which uses preg_replace() with the deprecated /e ...

n/a n/a n/a CVE
CRITICAL 10 THN:143E65C4342...

Public Exploit for Chained SAP Flaws Exposes Unpatched Systems to Remote Code Execution_THN:143E65C4342D6D8160EF9CA683D2C98D

![](data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAQAAAC1HAwCAAAAC0lEQVR42mP8Xw8AAoMBgDTD2qgAAAAASUVORK5CYII=) A new exploit combining tw...

N/A N/A THN
CRITICAL 9.9 056E4D1E-04E9-

Exploit for CVE-2025-49113_056E4D1E-04E9-596C-B560-7BDF74005A0A

CVE-2025-49113-Roundcube-RCE-PHP...........................

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 FC9EA752-0404-

Exploit for CVE-2025-8723_FC9EA752-0404-53AA-9BBE-29CFB2C1D14B

⚡️ Cloudflare Image Resizing Description: The plugin's REST...

N/A N/A GITHUBEXPLOIT